CVE-2015-4047
published 2015-05-29CVE-2015-4047: racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a series of…
PriorityP340high7.8CVSS 2.0
AVNACLAuNCNINAC
EPSS
9.88%
95.0th percentile
racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a series of crafted UDP requests.
Affected
46 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| f5 | big-ip_access_policy_manager | — | — |
| f5 | big-ip_access_policy_manager | 11.0.0 – 11.6.4 | — |
| f5 | big-ip_access_policy_manager | 12.0.0 – 12.1.4 | — |
| f5 | big-ip_advanced_firewall_manager | — | — |
| f5 | big-ip_advanced_firewall_manager | 11.3.0 – 11.6.4 | — |
| f5 | big-ip_advanced_firewall_manager | 12.0.0 – 12.1.4 | — |
| f5 | big-ip_analytics | — | — |
| f5 | big-ip_analytics | 11.0.0 – 11.6.4 | — |
| f5 | big-ip_analytics | 12.0.0 – 12.1.4 | — |
| f5 | big-ip_application_acceleration_manager | — | — |
| f5 | big-ip_application_acceleration_manager | 11.4.0 – 11.6.4 | — |
| f5 | big-ip_application_acceleration_manager | 12.0.0 – 12.1.4 | — |
| f5 | big-ip_application_security_manager | — | — |
| f5 | big-ip_application_security_manager | 11.0.0 – 11.6.4 | — |
| f5 | big-ip_application_security_manager | 12.0.0 – 12.1.4 | — |
| f5 | big-ip_domain_name_system | — | — |
| f5 | big-ip_domain_name_system | 12.0.0 – 12.1.4 | — |
| f5 | big-ip_edge_gateway | 11.0.0 – 11.3.0 | — |
| f5 | big-ip_global_traffic_manager | 11.0.0 – 11.6.4 | — |
| f5 | big-ip_link_controller | — | — |
| f5 | big-ip_link_controller | 11.0.0 – 11.6.4 | — |
CVSS provenance
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
osv7.8HIGH
vendor_redhat7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
ipsec-tools vulnerability
vendor_ubuntu·2015-06-01
CVE-2015-4047 ipsec-tools vulnerability
Title: ipsec-tools vulnerability
Summary: ipsec-tools could be made to crash if it received specially crafted network
traffic.
It was discovered that racoon, the ipsec-tools IKE daemon, incorrectly
handled certain UDP packets. A remote attacker could use this issue to
cause racoon to crash, resulting in a denial of service.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
ipsec-tools: NULL pointer dereference in racoon/gssapi.c
vendor_redhat·2015-05-19·CVSS 7.8
CVE-2015-4047 [HIGH] CWE-476 ipsec-tools: NULL pointer dereference in racoon/gssapi.c
ipsec-tools: NULL pointer dereference in racoon/gssapi.c
racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a series of crafted UDP requests.
Statement: Red Hat Enterprise Linux 5 is now in Production 3 Phase of the support and maintenance life cycle. This has been rated as having Moderate security impact and is not currently planned to be addressed in future updates. For additional information, refer to the Red Hat Enterprise Linux Life Cycle: https://access.redhat.com/support/policy/updates/errata/
Package: ipsec-tools (Red Hat Enterprise Linux 5) - Will not fix
GHSA
GHSA-47jj-2hp6-grww: racoon/gssapi
ghsa_unreviewed·2022-05-14
CVE-2015-4047 [HIGH] CWE-476 GHSA-47jj-2hp6-grww: racoon/gssapi
racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a series of crafted UDP requests.
OSV
CVE-2015-4047: racoon/gssapi
osv·2015-05-22·CVSS 7.8
CVE-2015-4047 [HIGH] CVE-2015-4047: racoon/gssapi
racoon/gssapi.c in IPsec-Tools 0.8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and IKE daemon crash) via a series of crafted UDP requests.
No detection rules found.
No public exploits indexed.
http://lists.fedoraproject.org/pipermail/package-announce/2015-June/159482.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2015-June/159549.htmlhttp://packetstormsecurity.com/files/131992/IPsec-Tools-0.8.2-Denial-Of-Service.htmlhttp://seclists.org/fulldisclosure/2015/May/81http://seclists.org/fulldisclosure/2015/May/83http://www.debian.org/security/2015/dsa-3272http://www.openwall.com/lists/oss-security/2015/05/20/1http://www.openwall.com/lists/oss-security/2015/05/21/11http://www.securityfocus.com/bid/74739http://www.securitytracker.com/id/1032397http://www.ubuntu.com/usn/USN-2623-1https://support.f5.com/csp/article/K05013313https://www.altsci.com/ipsec/ipsec-tools-sa.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2015-June/159482.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2015-June/159549.htmlhttp://packetstormsecurity.com/files/131992/IPsec-Tools-0.8.2-Denial-Of-Service.htmlhttp://seclists.org/fulldisclosure/2015/May/81http://seclists.org/fulldisclosure/2015/May/83http://www.debian.org/security/2015/dsa-3272http://www.openwall.com/lists/oss-security/2015/05/20/1http://www.openwall.com/lists/oss-security/2015/05/21/11http://www.securityfocus.com/bid/74739http://www.securitytracker.com/id/1032397http://www.ubuntu.com/usn/USN-2623-1https://support.f5.com/csp/article/K05013313https://www.altsci.com/ipsec/ipsec-tools-sa.html
2015-05-29
Published